oddlama
|
a087b1f731
|
feat(telegraf): allow nginx_status access via ipv6 too
|
2023-07-02 12:17:38 +02:00 |
|
oddlama
|
73ab856da9
|
feat(nginx): add dummy host that matches unrecognized server_names
|
2023-07-02 12:17:36 +02:00 |
|
oddlama
|
01668ddee6
|
docs: clarifications
|
2023-07-02 00:22:59 +02:00 |
|
oddlama
|
5636a8d08c
|
docs: move structure to own document
|
2023-07-02 00:17:48 +02:00 |
|
oddlama
|
e1e7516e1a
|
refactor: add lib extensions to nixpkgs.lib as overlays
|
2023-07-02 00:08:17 +02:00 |
|
oddlama
|
385d8178a2
|
docs: format
|
2023-07-01 01:57:34 +02:00 |
|
oddlama
|
999f3e3e26
|
docs: formatting
|
2023-07-01 01:46:44 +02:00 |
|
oddlama
|
bc757a29e1
|
docs: update structure
|
2023-07-01 01:44:43 +02:00 |
|
oddlama
|
aaf3babf9b
|
fix: set hostname with higher priority
|
2023-07-01 01:44:26 +02:00 |
|
oddlama
|
11ba487bf0
|
fix: set new vm secret paths
|
2023-07-01 01:20:17 +02:00 |
|
oddlama
|
80e7c1bdbf
|
refactor: finish decoupling the library functions from config
|
2023-07-01 01:11:58 +02:00 |
|
oddlama
|
68bb9731d3
|
wip: remove very specific special args and unify library functions
|
2023-06-30 01:55:17 +02:00 |
|
oddlama
|
dfc3084fe9
|
docs: minor additions
|
2023-06-29 01:19:46 +02:00 |
|
oddlama
|
e534bdd38b
|
docs: add hosts table
|
2023-06-29 01:05:51 +02:00 |
|
oddlama
|
84ac34cb6c
|
refactor: major refactor into proper reusable modules. No logical changes.
|
2023-06-29 00:27:54 +02:00 |
|
oddlama
|
04872f6ec5
|
chore: clean up old nom config
|
2023-06-25 22:59:13 +02:00 |
|
oddlama
|
9a810bd125
|
feat: convert nom to disko
|
2023-06-25 22:58:11 +02:00 |
|
oddlama
|
02a8544825
|
chore: remove recursive-nix
|
2023-06-25 22:57:43 +02:00 |
|
oddlama
|
5bc7fa310b
|
chore: disable autoSubUidGidRange for determinism
|
2023-06-25 22:56:53 +02:00 |
|
oddlama
|
1aa2a8d8b7
|
chore: unfortunately basic-auth conflicts with influxdb
|
2023-06-25 14:59:41 +02:00 |
|
oddlama
|
10a52642ad
|
chore: test basic auth with influx, but seems to conflict with internal auth
|
2023-06-25 14:37:25 +02:00 |
|
oddlama
|
6e15d49cbc
|
fix: missing https scheme in telegraf output influxdb
|
2023-06-25 02:56:16 +02:00 |
|
oddlama
|
f606e6e554
|
feat: enable telegraf on all server nodes; add 10 minute autorestart
|
2023-06-25 02:34:05 +02:00 |
|
oddlama
|
b8f647fb4a
|
feat: add telegraf module
|
2023-06-25 00:44:04 +02:00 |
|
oddlama
|
df2e046295
|
chore: disable auto login on oauth2-proxy and grafana (better for sign-out)
|
2023-06-23 23:27:34 +02:00 |
|
oddlama
|
ccd62a730a
|
feat: add influxdb microvm
|
2023-06-23 18:07:54 +02:00 |
|
oddlama
|
eb9ee0bf0d
|
feat: patch oauth2-proxy to support scopes as groups
|
2023-06-23 15:20:58 +02:00 |
|
oddlama
|
1a0378ee5c
|
feat: use nginx json logs; oauth2-proxy authentication working, groups not yet
|
2023-06-23 00:40:15 +02:00 |
|
oddlama
|
71dbda6262
|
feat: promote oauth proxy config to a nginx virtualHosts option
|
2023-06-22 02:55:22 +02:00 |
|
oddlama
|
a092a5a846
|
fix: allow using distributed-config to alter self
(skipped promtail secret)
|
2023-06-22 01:22:28 +02:00 |
|
oddlama
|
dea87afdbc
|
fix: invalid space in htpasswd file
|
2023-06-22 00:57:30 +02:00 |
|
oddlama
|
f0d2475f74
|
feat: convert all microvms to use nginx
|
2023-06-22 00:51:45 +02:00 |
|
oddlama
|
edb1d8791d
|
chore: include our oauth module
|
2023-06-21 23:58:03 +02:00 |
|
oddlama
|
5f02889bd0
|
feat: remove caddy, enable nginx with oauth2_proxy
|
2023-06-21 23:57:33 +02:00 |
|
oddlama
|
041cf9cc33
|
chore: remove obsolete dhparams on zackbiene
|
2023-06-21 23:56:57 +02:00 |
|
oddlama
|
609e562bec
|
feat: add oauth2 proxy module and simple nginx reverse proxy module
|
2023-06-21 23:56:12 +02:00 |
|
oddlama
|
e32d5575b4
|
fix: realize mkif earlier to disable local-vms definition
|
2023-06-21 01:43:00 +02:00 |
|
oddlama
|
b545967e7a
|
feat: add adguardhome microvm
|
2023-06-21 01:37:25 +02:00 |
|
oddlama
|
6b81ecd961
|
feat: prepare sentinel for webapp oauth2 authentication
|
2023-06-21 01:36:44 +02:00 |
|
oddlama
|
19acca7cba
|
chore: remove microvm local wireguard if not needed
|
2023-06-21 01:35:41 +02:00 |
|
oddlama
|
06d5d26dde
|
fix: apparently ':' is not a great character for basic auth
|
2023-06-18 16:03:41 +02:00 |
|
oddlama
|
d6af975817
|
feat: enable promtail on all vms
|
2023-06-18 14:31:23 +02:00 |
|
oddlama
|
4d5813a2ad
|
fix: missing protocol spec in vaultwarden domain
|
2023-06-18 13:15:23 +02:00 |
|
oddlama
|
1b42e0cd72
|
fix: refactoring mistakes; and add generator for initrd_host_ed25519_key
|
2023-06-18 12:55:18 +02:00 |
|
oddlama
|
abdf363fba
|
feat: add vaultwarden microvm
|
2023-06-18 01:12:08 +02:00 |
|
oddlama
|
25437cfdeb
|
add hexyl to common utils
|
2023-06-17 23:47:39 +02:00 |
|
oddlama
|
53850a4ff2
|
chore: remove old todo
|
2023-06-17 23:47:30 +02:00 |
|
oddlama
|
b682db7173
|
chore: add caddy common defaults
|
2023-06-17 23:46:40 +02:00 |
|
oddlama
|
9ed52a253c
|
feat: enforce deterministic user and group ids
|
2023-06-17 23:44:54 +02:00 |
|
oddlama
|
b5d2d31b69
|
fix: typo
|
2023-06-13 03:04:38 +02:00 |
|